MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 f925d649aee4b92c974778fd87576229f44972c23df41df5aacdd9dc55fd2c45. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: f925d649aee4b92c974778fd87576229f44972c23df41df5aacdd9dc55fd2c45
SHA3-384 hash: bf99864991cd7063d75ac70f1cf868eacebaee67aba8b6edb13381b840e953407a5e14f5b0df87f7d94ab07922ff94f4
SHA1 hash: 27d74a534bb22ea8a61f07ec2c20116b369a22c6
MD5 hash: 31cae77f918b6d598a4b0e5af9aea643
humanhash: nineteen-solar-connecticut-oklahoma
File name:F12.ps1
Download: download sample
File size:1'145'684 bytes
First seen:2020-09-28 12:29:03 UTC
Last seen:2020-09-29 09:25:44 UTC
File type:PowerShell (PS) ps1
MIME type:text/plain
ssdeep 12288:80lZVKwTTtJbXHnx2hDWbHApyg8RoonPVpCk8ISIeBl13:/ldTTtJb3xqDUHAYkISTx
TLSH A535E893C36767A7EBC51603A804888A7F7488B5F5A9223C7BEF39CDD98B955001E5C3
Reporter JAMESWT_WT
Tags:Loader MassLogger ps1

Intelligence


File Origin
# of uploads :
2
# of downloads :
169
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Script-PowerShell.Trojan.Heuristic
Status:
Malicious
First seen:
2020-09-20 03:24:48 UTC
File Type:
Text
AV detection:
2 of 29 (6.90%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments